|
248051
|
7.8 |
HIGH
Local
|
vmware
|
workstation_player workstation_pro
|
VMware Workstation Pro/Player contains an insecure library loading vulnerability via ALSA sound driver configuration files. Successful exploitation of this issue may allow unprivileged host users to …
|
CWE-863
Incorrect Authorization
|
CVE-2017-4915
|
2024-11-21 12:26 |
2017-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248052
|
7.1 |
HIGH
Network
|
emc
|
isilon_onefs
|
EMC Isilon OneFS 8.0.1.0, OneFS 8.0.0.0 - 8.0.0.2, OneFS 7.2.1.0 - 7.2.1.3, and OneFS 7.2.0.x is affected by an NFS export vulnerability. Under certain conditions, after upgrading a cluster from OneF…
|
NVD-CWE-noinfo
|
CVE-2017-4979
|
2024-11-21 12:26 |
2017-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248053
|
5.4 |
MEDIUM
Network
|
rsa
|
adaptive_authentication_\(on_premise\)
|
EMC RSA Adaptive Authentication (On-Premise) versions prior to 7.3 P2 (exclusive) contains a fix for a cross-site scripting vulnerability that could potentially be exploited by malicious users to com…
|
CWE-79
Cross-site Scripting
|
CVE-2017-4978
|
2024-11-21 12:26 |
2017-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248054
|
7.2 |
HIGH
Network
|
mcafee
|
epolicy_orchestrator
|
A directory traversal vulnerability in the ePO Extension in McAfee ePolicy Orchestrator (ePO) 5.9.0, 5.3.2, and 5.1.3 and earlier allows remote authenticated users to execute a command of their choic…
|
CWE-22
Path Traversal
|
CVE-2017-3980
|
2024-11-21 12:26 |
2017-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248055
|
5.3 |
MEDIUM
Network
|
mcafee
|
network_data_loss_prevention
|
User Name Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to view user information via the appliance web interface.
|
CWE-200
Information Exposure
|
CVE-2017-4017
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248056
|
5.3 |
MEDIUM
Network
|
mcafee
|
network_data_loss_prevention
|
Web Server method disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to exploit and find another hole via HTTP response header.
|
CWE-200
Information Exposure
|
CVE-2017-4016
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248057
|
4.5 |
MEDIUM
Network
|
mcafee
|
network_data_loss_prevention
|
Clickjacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to inject arbitrary web script or HTML via HTTP response header.
|
CWE-1021
Improper Restriction of Rendered UI Layers or Frames
|
CVE-2017-4015
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248058
|
8.0 |
HIGH
Network
|
mcafee
|
network_data_loss_prevention
|
Session Side jacking vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view, add, and remove users via modification of the HTTP requ…
|
CWE-384
Session Fixation
|
CVE-2017-4014
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248059
|
5.3 |
MEDIUM
Network
|
mcafee
|
network_data_loss_prevention
|
Banner Disclosure in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote attackers to obtain product information via HTTP response header.
|
CWE-200
Information Exposure
|
CVE-2017-4013
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248060
|
6.5 |
MEDIUM
Network
|
mcafee
|
network_data_loss_prevention
|
Privilege Escalation vulnerability in the server in McAfee Network Data Loss Prevention (NDLP) 9.3.x allows remote authenticated users to view confidential information via modification of the HTTP re…
|
NVD-CWE-noinfo
|
CVE-2017-4012
|
2024-11-21 12:26 |
2017-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|